[ubuntu/hirsute-proposed] xdg-utils 1.1.3-2ubuntu2 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Thu Nov 26 19:49:15 UTC 2020


xdg-utils (1.1.3-2ubuntu2) hirsute; urgency=medium

  * SECURITY UPDATE: local file inclusion vulnerability
    - debian/patches/CVE-2020-27748.patch: remove attachment handling from
      mailto in scripts/xdg-email.in.
    - CVE-2020-27748

Date: Tue, 24 Nov 2020 14:26:08 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/xdg-utils/1.1.3-2ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 24 Nov 2020 14:26:08 -0300
Source: xdg-utils
Architecture: source
Version: 1.1.3-2ubuntu2
Distribution: hirsute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Changes:
 xdg-utils (1.1.3-2ubuntu2) hirsute; urgency=medium
 .
   * SECURITY UPDATE: local file inclusion vulnerability
     - debian/patches/CVE-2020-27748.patch: remove attachment handling from
       mailto in scripts/xdg-email.in.
     - CVE-2020-27748
Checksums-Sha1:
 8a849b15dd92a6afc2bf439d2a546e97f045ee90 2175 xdg-utils_1.1.3-2ubuntu2.dsc
 a3c4eb412c6ba7d0bb86262ed7ea1a6b73a5eab2 12724 xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
 d91f99747e118a939e0d509e45efc8306be60a39 6151 xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Checksums-Sha256:
 b9a7129aac821a344ab9733979993684a7c473150fc8d0d2070f526ba867396c 2175 xdg-utils_1.1.3-2ubuntu2.dsc
 63b40a25c7ceee664413548faf47629e42b755dd4c332970324a2ae4f089a44b 12724 xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
 74595900b9961a0ca336443fb83cd520ab05006a377d96eff7cdaeaa2cc1d552 6151 xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Files:
 3c0280798c988b4f2a5dcf3a683a3f3e 2175 utils optional xdg-utils_1.1.3-2ubuntu2.dsc
 b990ba50a0d5a39c0462ce989b64fe37 12724 utils optional xdg-utils_1.1.3-2ubuntu2.debian.tar.xz
 96b16f3f4b211915f8d9f7f4b95b2fab 6151 utils optional xdg-utils_1.1.3-2ubuntu2_source.buildinfo
Original-Maintainer: Debian freedesktop.org maintainers <pkg-freedesktop-maintainers at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
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=XMTF
-----END PGP SIGNATURE-----


More information about the Hirsute-changes mailing list